Lucene search

K
ciscoCiscoCISCO-SA-CURL-LIBCURL-D9DS39CV
HistoryOct 12, 2023 - 4:00 p.m.

cURL and libcurl Vulnerability Affecting Cisco Products: October 2023

2023-10-1216:00:00
tools.cisco.com
47
curl
libcurl
vulnerability
cisco
security
advisory
software
cve-2023-38545

AI Score

8

Confidence

Low

EPSS

0.003

Percentile

68.0%

On October 11, 2023, cURL released Version 8.4.0 of the cURL utility and the libcurl library. This release addressed two security vulnerabilities:

CVE-2023-38545 – High Security Impact Rating (SIR)
CVE-2023-38546 – Low SIR

This advisory covers CVE-2023-38545 only. For more information about this vulnerability, see the cURL advisory [“https://curl.se/docs/CVE-2023-38545.html”].

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-curl-libcurl-D9ds39cV [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-curl-libcurl-D9ds39cV”]

Affected configurations

Vulners
Node
ciscocisco_adaptive_security_appliance_\(asa\)_softwareMatchany
OR
ciscocrosswork_change_automationMatchany
OR
ciscosecure_network_analyticsMatchany
OR
ciscocisco_adaptive_security_appliance_\(asa\)_softwareMatchany
OR
ciscocrosswork_change_automationMatchany
OR
ciscosecure_network_analyticsMatchany
VendorProductVersionCPE
ciscocisco_adaptive_security_appliance_\(asa\)_softwareanycpe:2.3:a:cisco:cisco_adaptive_security_appliance_\(asa\)_software:any:*:*:*:*:*:*:*
ciscocrosswork_change_automationanycpe:2.3:a:cisco:crosswork_change_automation:any:*:*:*:*:*:*:*
ciscosecure_network_analyticsanycpe:2.3:a:cisco:secure_network_analytics:any:*:*:*:*:*:*:*